I've created an alert triggered by receiving a syslog message from a Palo firewall (path monitoring, let's us know when the local guest internet connection fails) Engineers would like to also get a message that would indicate that the path is valid again.
Can I create an alert reset condition based off a 2nd syslog message? Or is the only option to create a 2nd alert that is triggered off the 2nd syslog message (basically having an UP alert and a DOWN alert) If I have to go this route, is there a way to get the 2nd message/alert to reset the first alert?